CVE-2023-43481: Code Injection
An issue in Shenzhen TCL Browser TV Web BrowseHere (aka com.tcl.browser) 6.65.022dab24cc6231221gp allows a remote attacker to execute arbitrary JavaScript code via the com.tcl.browser.portal.browse.activity.BrowsePageActivity component.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-43481?
CVE-2023-43481 has been assessed with high severity due to the potential for remote code execution.
How do I fix CVE-2023-43481?
To mitigate CVE-2023-43481, users should update to the latest version of Shenzhen TCL Browser TV Web BrowseHere.
Who is affected by CVE-2023-43481?
CVE-2023-43481 affects users of Shenzhen TCL Browser TV Web BrowseHere version 6.65.022_dab24cc6_231221_gp.
What type of vulnerability is CVE-2023-43481?
CVE-2023-43481 is a remote code execution vulnerability that allows execution of arbitrary JavaScript code.
Can CVE-2023-43481 be exploited remotely?
Yes, CVE-2023-43481 can be exploited remotely, allowing attackers to execute JavaScript on the targeted device.